Vulnerabilidades em microsoft
10.810 resultadosAnálise Vexday
Microsoft apresenta 41 vulnerabilidades registradas, com 29 publicadas nos últimos 90 dias, indicando ritmo elevado de descobertas recentes. Oito vulnerabilidades críticas foram identificadas, predominantemente relacionadas a traversal de diretório (CWE-22), mas nenhuma está sob exploração ativa conhecida no momento. O volume recente de falhas requer atenção contínua em patching, especialmente considerando a superfície de ataque do ecossistema Microsoft.
CVE-2022-23253MEDIUMWindows Point-to-Point Tunneling Protocol Denial of Service VulnerabilityEPSS 56.4%CVE-2022-38044HIGHWindows CD-ROM File System Driver Remote Code Execution VulnerabilityEPSS 56.3%CVE-2024-30043MEDIUMMicrosoft SharePoint Server Information Disclosure VulnerabilityEPSS 56.1%CVE-2023-21742HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 55.8%CVE-2025-21285HIGHMicrosoft Message Queuing (MSMQ) Denial of Service VulnerabilityEPSS 55.7%CVE-2024-43461HIGHWindows MSHTML Platform Spoofing VulnerabilityEPSS 54.5%KEVCVE-2019-0726—A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, akaEPSS 54.5%CVE-2022-34718CRITICALWindows TCP/IP Remote Code Execution VulnerabilityEPSS 54.4%CVE-2020-1054HIGHWin32k Elevation of Privilege VulnerabilityEPSS 54.2%KEVCVE-2021-31196HIGHMicrosoft Exchange Server Remote Code Execution VulnerabilityEPSS 54.1%KEVCVE-2022-21971HIGHWindows Runtime Remote Code Execution VulnerabilityEPSS 53.9%KEVCVE-2021-27068HIGHVisual Studio Remote Code Execution VulnerabilityEPSS 53.6%CVE-2022-35823HIGHMicrosoft SharePoint Remote Code Execution VulnerabilityEPSS 53.6%CVE-2023-32029HIGHMicrosoft Excel Remote Code Execution VulnerabilityEPSS 53.5%CVE-2019-0541HIGHA remote code execution vulnerability exists in the way that the MSHTML engine inproperly validates input, aka "MSHTML Engine Remote Code ExEPSS 53.2%KEVCVE-2019-0808HIGHAn elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EPSS 53.0%KEVCVE-2024-38023HIGHMicrosoft SharePoint Server Remote Code Execution VulnerabilityEPSS 52.9%CVE-2021-31213HIGHVisual Studio Code Remote Containers Extension Remote Code Execution VulnerabilityEPSS 52.8%CVE-2019-1367HIGHA remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'ScripEPSS 52.4%KEVCVE-2023-36777MEDIUMMicrosoft Exchange Server Information Disclosure VulnerabilityEPSS 52.0%